Every patch window is a bet.
We build the software that settles it.

Zurlux builds reliability tooling for enterprise infrastructure teams. Our first product, PatchMortem, tells you why a patch failed, rolls it back before the window closes, and leaves an audit trail an auditor can actually read.

Replaying a real failure

One change window, start to finish.

Change CHG0044182 — 212 hosts, a live patch failure, diagnosed and rolled back before the window closed.

CHG0044182 · 212 hosts Replaying a real failure
22:00 opens02:0006:00 closes
KB5041585 failed on 3 of 212 hosts
01:14:02 · exit 0x800f0922
Root cause matched — WinRE partition under 250 MB
01:14:38 · servicing stack blocked
Cluster check — 2 of 3 are WSFC nodes
01:15:11 · quorum held, patching paused on peer
Rollback complete on 3 hosts
01:16:47 · audit entry written · change record updated
2m 45s
detect → rollback
0
failed rollbacks
1
immutable record
215
Failure patterns
7
Platforms covered
<2s
Signal → remediation
ap-south-1
AWS Mumbai residency
What we do

Diagnosis, not alerts.

Monitoring tells you something broke. Our products tell you what broke it, what to do, and then do it — with a record of every decision.

01 / Diagnosis

Root cause, before the window closes

Agent signals are matched against 215 documented failure patterns across seven platforms — anchored on the error code and failing component, so you get a specific cause, not a category.

See how it works
02 / Buyers

Regulated and run hard

Banking, insurance, healthcare, manufacturing, and the MSPs who patch on their behalf. Environments where a missed rollback becomes a compliance finding.

Banking & BFSI
03 / Team

Small, senior, hands on

Engineers who have run enterprise patching estates. Every design decision is checked against how the work is actually done at 2 a.m.

Who we are
PatchMortem pricing

Transparent pricing, in INR.

30-day free trial on all plans. Available on AWS Marketplace against your committed EDP spend.

Starter
₹49,999₹4,99,990 / month
up to 500 endpoints
  • Semantic patch-failure classification
  • Automated rollback execution
  • HMAC audit trail · 90-day retention
  • SCCM, Intune, ManageEngine
Start free trial
Most popular
Enterprise
₹1,49,999₹14,99,990 / month
up to 5,000 endpoints
  • Everything in Starter
  • Predictive failure intelligence
  • Compliance reporting · RBI, PCI-DSS, SEBI
  • vSphere + Kubernetes support
  • ServiceNow / Jira sync · RBAC
Start free trial
Elite
Custom
unlimited endpoints
  • Everything in Enterprise
  • On-premise deployment option
  • Custom compliance frameworks
  • SLA-backed uptime · dedicated engineering
Contact sales
Built for

Environments where a missed rollback is a finding.

Banking & BFSI

Aligned to RBI IT Framework 2023, SEBI and IRDAI evidence requirements.

Insurance

Change windows on regulated policy and claims infrastructure.

Healthcare

Uptime-critical estates where an unpatched host is a live risk.

MSPs

Managed service providers patching many estates on clients' behalf.

Run PatchMortem against your own environment.

A 30-minute session on your actual patch-management setup — no slides, no vendor pitch. We'd rather show you a rollback on your stack than tell you about ours.

Request a walkthrough
FAQ

Questions procurement will ask.

When a patch fails during a change window, it identifies the root cause by matching the failure against 215 documented patterns, executes the correct rollback where that is safe, and writes an append-only audit record of every decision. It reacts to your patch schedule — it does not set one.

Both. Agentless integrates via webhook from your existing tool (Intune, SCCM, ManageEngine) and deploys in about a day. The agent captures raw system-log signal directly from the endpoint for higher-confidence classification and the full set of 60+ rollback methods. Most BFSI estates start agentless.

All data is stored and processed in AWS ap-south-1 (Mumbai, India). The agent is code-signed and outbound-only — it opens no inbound connections to your endpoints. Sub-processors are disclosed in the DPA under the DPDP Act 2023.

Every detection, classification, approval and rollback is written to an append-only, HMAC-SHA256 cryptographically chained log, built for RBI IT Framework Section 4.2. Tamper with one record and the chain breaks. Exports are available for RBI, PCI-DSS, SEBI and IRDAI.

SOC 2 Type I is in progress. The underlying controls are already running — data residency in ap-south-1, code-signed outbound-only agent, append-only audit chain, least-privilege access, SSO and RBAC — and we'll share the report when the audit completes rather than imply a certification we don't yet hold.